Назад
Company hidden
4 дня назад

IT & Security Governance Analyst (Cybersecurity)

82 000 - 92 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
junior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
IT & Security Governance Analyst (Cybersecurity): Strengthening technology governance, security controls, data stewardship, and operational resilience across corporate IT, cloud, product, and operational systems with an accent on risk management, identity and access governance, and compliance readiness. Focus on maintaining risk registers and governance documentation, coordinating vulnerability and vendor assessments, supporting cloud security and Secure SDLC practices, and improving incident response and recovery capabilities.

Location: Fully remote

Salary: $82,000–$92,000 per year

Company

hirify.global supports communication access and organizational initiatives through corporate IT, cloud, product, and operational technology environments.

What you will do

  • Maintain IT and security roadmaps, technology risk registers, governance records, system ownership documentation, and technology inventories.
  • Develop and maintain IT and security policies, standards, procedures, metrics, risk reports, and audit-readiness documentation.
  • Support data classification, access governance, retention standards, data-flow documentation, encryption reviews, logging, and security-control mappings.
  • Coordinate identity and access management, endpoint and device management, SaaS governance, backup validation, and resilience practices.
  • Partner with Engineering on Secure SDLC, cloud security, vulnerability management, architecture reviews, and security tooling.
  • Maintain incident-response documentation, support tabletop exercises and continuity testing, and coordinate vendor, partner, audit, and assurance activities.

Requirements

  • Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or a related field, or at least one year of relevant experience in IT governance, cybersecurity, IT operations, or risk management.
  • Experience across multiple IT or security domains and in supporting IT, data, or security governance initiatives.
  • Understanding of IAM principles including SSO, MFA, least privilege, and access reviews.
  • Working knowledge of logging, endpoint security, encryption, backups, vulnerability management, and network security.
  • Ability to analyze technical risks, develop practical recommendations, and coordinate cross-functional initiatives with technical and non-technical stakeholders.
  • Ability to communicate effectively in American Sign Language is preferred.

Nice to have

  • Experience with PCI DSS, SOC 2, ISO 27001, NIST 800-53 Rev. 5, or HIPAA-adjacent controls.
  • Experience with AWS, Azure, GCP, CI/CD environments, MDM, EDR, SIEM, vulnerability scanners, or related tooling.
  • Familiarity with secure software development practices and threat modeling.
  • Security+, SSCP, GSEC, or equivalent certification.
  • Experience supporting grant-funded initiatives, multi-partner collaborations, or externally funded programs.

Culture & Benefits

  • Fully remote work environment.
  • Work focused on practical governance, accountability, risk management, efficiency, and resilience rather than compliance alone.
  • Cross-functional collaboration with Engineering, program teams, Legal, and business stakeholders.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →